Overview
High-impact breaches targeting U.S. federal personnel databases — among the most valuable targets for espionage due to SSNs, clearance-adjacent job data, and long retention of HR records.
Timeline
- 2015: OPM breach — 21.5M records; China-state hackers suspected; benchmark for federal HR breach severity
- 2026-09/10: Parallel incidents — dmdc file-sharing misconfiguration (~3M records) and shinyhunters FBIJobs.gov claim (2–3 TB alleged; Oracle PeopleSoft) (2026-10-01-federal-agencies-hacks-sensitive-data)
October 2026 DMDC and FBI incidents share personnel-data theme but no established connection between attackers or vulnerabilities.
Analysis
Common failure modes: unencrypted PII on shared systems, long dwell times (9+ months), delayed discovery, and HR/identity platforms as single points of failure. Developer takeaway: encryption-at-rest, file-share auditing, MFA, and breach-notification timelines apply beyond government.
Related
- data-breach
- dmdc
- shinyhunters
- hive-security
- incident-response
- oracle
- cybersecurity
- supply-chain-security